Skip to main content

DashboardDashboards Guide

Table of Contents

Data Loss Prevention Activity Dashboard – Host-Based

This dashboard provides an overview of Data Loss Prevention (DLP) activities on the hosts in your organization, including information on the DLP alerts and the hosts associated with them.

Note

This dashboard can assist you in complying with the following regulatory requirements: HIPAA 164.312(b), HIPAA 164.312(a)(1), NIST 800-53 AU-13(3), CJIS 5.1.3, CJIS 5.1.4, NIST 800-66 R1 4.4.3, HIPAA 164-306(a)(4), NIST 800-66 R1 4.6.3, CJIS 4.2.3.3, GDPR 5.1.f, HIPAA 164-306(a)(3).

Time Range Filter

The Event : Approx Log Time filter sets the time range for the event data. The default setting is in the last 7 days. You can update this filter with a wide range of customizable settings.

To update the time range filter, click the arrow (icon-expand.png) on the right, under the Edit button, to expand the filters panel. In the Event : Approx Log Time filter, select an operator from the first drop down menu and then enter or select values in the subsequent fields, depending on the operator you selected. To save your filter changes, click Apply on the right side of the filter panel. The updated filter is applied to the visualization.

time-range-options.png

Host-Based DLP Alerts Count

This single value bar chart displays the total number of host-based DLP alerts within the selected time range.

Host-Based-DLP-Alerts-Count.png

Number of Hosts with DLP Alerts

This single value bar chart displays the number of unique hosts in your organization with DLP alerts.

Top 10 Host-Based DLP Alert Types

This pie chart illustrates the count proportions of the top 10 most common host-based DLP alert types. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Top-10-Host-Based-DLP-Alerts.png

Top 5 Host-Based DLP Alert Categories

This pie chart illustrates the count proportions of the top 5 most common host-based DLP alert categories. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Top 10 Hosts with DLP Alerts

This pie chart illustrates the alert count proportions of the top 10 hosts with the most DLP alerts. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Top 5 Protocols in Host-Based DLP Alerts

This pie chart illustrates the count proportions of the top 5 most common protocols in host-based DLP alerts. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Host-Based DLP Activity Trends

This line graph shows the count trends of the different host-based DLP activities. To view the values represented in the chart, hover your pointer over the graph lines to display the data points. To view the underlying events of a value, click the data point, and then click Show Results in Search.

Host-Based-DLP-Activity-Trends.png